Security & Data
Security and data
Understand workspace boundaries and operate MCP connections safely.
Each MCP Owner Workspace is an independent customer and data boundary. Use the workspace only for MCP servers that the owner is authorized to operate.
Data-minimizing practices
- Use descriptive names that do not contain secrets or personal data.
- Keep test inputs synthetic whenever possible.
- Do not send credentials, bank details, or identity documents through support.
- Give team members only the access needed for their role.
- Review access when a team member or service engagement changes.
Analytics views focus on operational metadata and do not display tool arguments. The upstream MCP server remains responsible for the data it receives and returns during a tool call.
Stripe holds the MCP Owner's verified payment-account information under Stripe's terms. The MCP Owner controls that connected account.
Continue with Workspace access.